Securing REST API using custom tokens (stateless, no UI, no cookies, no basic authentication, no OAuth, no login page)

前端 未结 5 1956
轻奢々
轻奢々 2020-12-22 18:05

There are lots of guidelines, sample codes that show how to secure REST API with Spring Security, but most of them assume a web client and talk about login page, redirection

5条回答
  •  萌比男神i
    2020-12-22 18:35

    I recommend JSON Web Tokens http://jwt.io/ , it's stateless and scalable.

    Here is an example project, https://github.com/brahalla/Cerberus

提交回复
热议问题